CWE-119— Buffer Operations Within Bounds (Buffer Overflow)
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.— MITRE CWE catalog
14,450 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-119page 1 of 289
- CVE-2020-1350CRITICALCVSS 10.0EG 10.0⚠ KEV2020-07-14
A remote code execution vulnerability exists in Windows Domain Name System servers when they fail to properly handle requests, aka 'Windows DNS Server Remote Code Execution Vulnerability'.
- CVE-2020-0796CRITICALCVSS 10.0EG 10.0⚠ KEV2020-03-12
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'.
- CVE-2026-8452CRITICALCVSS 9.8EG 9.8⚠ KEV2026-06-30
Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of Service if the appliance is configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual serv…
- CVE-2025-7775CRITICALCVSS 9.8EG 9.8⚠ KEV2025-08-26
Memory overflow vulnerability leading to Remote Code Execution and/or Denial of Service in NetScaler ADC and NetScaler Gateway when NetScaler is configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server …
- CVE-2025-6543CRITICALCVSS 9.8EG 9.8⚠ KEV2025-06-25
Memory overflow vulnerability leading to unintended control flow and Denial of Service in NetScaler ADC and NetScaler Gateway when configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
- CVE-2025-31200CRITICALCVSS 9.8EG 9.8⚠ KEV2025-04-16
A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4.1 and iPadOS 18.4.1, macOS Sequoia 15.4.1, tvOS 18.4.1, visionOS 2.4.1, watchOS 11.5. Processing an audio stream in a maliciously crafte…
- CVE-2021-22991CRITICALCVSS 9.8EG 9.8⚠ KEV2021-03-31
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.1.x before 12.1.5.3, undisclosed requests to a virtual server may be incorrectly handled by the Traffic Management Micr…
- CVE-2020-29557CRITICALCVSS 9.8EG 9.8⚠ KEV2021-01-29
An issue was discovered on D-Link DIR-825 R1 devices through 3.0.1 before 2020-11-20. A buffer overflow in the web interface allows attackers to achieve pre-authentication remote code execution.
- CVE-2020-5135CRITICALCVSS 9.8EG 9.8⚠ KEV2020-10-12
A buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a malicious request to the firewall. This vulnerability affected SonicOS Gen 6 version 6…
- CVE-2019-3568CRITICALCVSS 9.8EG 9.8⚠ KEV2019-05-14
A buffer overflow vulnerability in WhatsApp VOIP stack allowed remote code execution via specially crafted series of RTCP packets sent to a target phone number. The issue affects WhatsApp for Android prior to v2.19.134, WhatsApp Business f…
- CVE-2018-0151CRITICALCVSS 9.8EG 9.8⚠ KEV2018-03-28
A vulnerability in the quality of service (QoS) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated …
- CVE-2018-7445CRITICALCVSS 9.8EG 9.8⚠ KEV2018-03-19
A buffer overflow was found in the MikroTik RouterOS SMB service when processing NetBIOS session request messages. Remote attackers with access to the service can exploit this vulnerability and gain code execution on the system. The overfl…
- CVE-2018-6789CRITICALCVSS 9.8EG 9.8⚠ KEV2018-02-08
An issue was discovered in the base64d function in the SMTP listener in Exim before 4.90.1. By sending a handcrafted message, a buffer overflow may happen. This can be used to execute code remotely.
- CVE-2017-15944CRITICALCVSS 9.8EG 9.8⚠ KEV2017-12-11
Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x before 8.0.6 allows remote attackers to execute arbitrary code via vectors involving the management interface.
- CVE-2017-12240CRITICALCVSS 9.8EG 9.8⚠ KEV2017-09-29
The DHCP relay subsystem of Cisco IOS 12.2 through 15.6 and Cisco IOS XE Software contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code and gain full control of an affected system. The atta…
- CVE-2017-6862CRITICALCVSS 9.8EG 9.8⚠ KEV2017-05-26
NETGEAR WNR2000v3 devices before 1.1.2.14, WNR2000v4 devices before 1.0.0.66, and WNR2000v5 devices before 1.0.0.42 allow authentication bypass and remote code execution via a buffer overflow that uses a parameter in the administration web…
- CVE-2014-3931CRITICALCVSS 9.8EG 9.8⚠ KEV2017-03-31
fastping.c in MRLG (aka Multi-Router Looking Glass) before 5.5.0 allows remote attackers to cause an arbitrary memory write and memory corruption.
- CVE-2017-7269CRITICALCVSS 9.8EG 9.8⚠ KEV2017-03-27
Buffer overflow in the ScStoragePathFromUrl function in the WebDAV service in Internet Information Services (IIS) 6.0 in Microsoft Windows Server 2003 R2 allows remote attackers to execute arbitrary code via a long header beginning with "I…
- CVE-2016-10174CRITICALCVSS 9.8EG 9.8⚠ KEV2017-01-30
The NETGEAR WNR2000v5 router contains a buffer overflow in the hidden_lang_avi parameter when invoking the URL /apply.cgi?/lang_check.html. This buffer overflow can be exploited by an unauthenticated attacker to achieve remote code executi…
- CVE-2015-5119CRITICALCVSS 9.8EG 9.8⚠ KEV2015-07-08
Use-after-free vulnerability in the ByteArray class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.296 and 14.x through 18.0.0.194 on Windows and OS X and 11.x through 11.2.202.468 on Linux allows remo…
- CVE-2015-3113CRITICALCVSS 9.8EG 9.8⚠ KEV2015-06-23
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11.2.202.468 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as e…
- CVE-2013-3346CRITICALCVSS 9.8EG 9.8⚠ KEV2013-08-30
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2…
- CVE-2011-1889CRITICALCVSS 9.8EG 9.8⚠ KEV2011-06-16
The NSPLookupServiceNext function in the client in Microsoft Forefront Threat Management Gateway (TMG) 2010 allows remote attackers to execute arbitrary code via vectors involving unspecified requests, aka "TMG Firewall Client Memory Corru…
- CVE-2010-4344CRITICALCVSS 9.8EG 9.8⚠ KEV2010-12-14
Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code via an SMTP session that includes two MAIL commands in conjunction with a large message containing …
- CVE-2010-3765CRITICALCVSS 9.8EG 9.8⚠ KEV2010-10-28
Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, and SeaMonkey 2.x before 2.0.10, when JavaScript is enabled, allows remote attackers to execute arbitrary code via vecto…
- CVE-2008-4250CRITICALCVSS 9.8EG 9.8⚠ KEV2008-10-23
The Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, and 7 Pre-Beta allows remote attackers to execute arbitrary code via a crafted RPC request that triggers the overfl…
- CVE-2023-4966CRITICALCVSS 7.5EG 9.4⚠ KEV2023-10-10
Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server.
- CVE-2026-3910CRITICALCVSS 8.8EG 9.0⚠ KEV2026-03-12
Inappropriate implementation in V8 in Google Chrome prior to 146.0.7680.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
- CVE-2025-14174CRITICALCVSS 8.8EG 9.0⚠ KEV2025-12-12
Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
- CVE-2025-31277CRITICALCVSS 8.8EG 9.0⚠ KEV2025-07-30
The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to memory c…
- CVE-2019-8720CRITICALCVSS 8.8EG 9.0⚠ KEV2023-03-06
A vulnerability was found in WebKit. The flaw is triggered when processing maliciously crafted web content that may lead to arbitrary code execution. Improved memory handling addresses the multiple memory corruption issues.
- CVE-2021-30666CRITICALCVSS 8.8EG 9.0⚠ KEV2021-09-08
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 12.5.3. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have be…
- CVE-2021-30665CRITICALCVSS 8.8EG 9.0⚠ KEV2021-09-08
A memory corruption issue was addressed with improved state management. This issue is fixed in watchOS 7.4.1, iOS 14.5.1 and iPadOS 14.5.1, tvOS 14.6, iOS 12.5.3, macOS Big Sur 11.3.1. Processing maliciously crafted web content may lead to…
- CVE-2021-22894CRITICALCVSS 8.8EG 9.0⚠ KEV2021-05-27
A buffer overflow vulnerability exists in Pulse Connect Secure before 9.1R11.4 allows a remote authenticated attacker to execute arbitrary code as the root user via maliciously crafted meeting room.
- CVE-2021-21220CRITICALCVSS 8.8EG 9.0⚠ KEV2021-04-26
Insufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- CVE-2021-26411CRITICALCVSS 8.8EG 9.0⚠ KEV2021-03-11
Internet Explorer Memory Corruption Vulnerability
- CVE-2021-21166CRITICALCVSS 8.8EG 9.0⚠ KEV2021-03-09
Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- CVE-2018-0167CRITICALCVSS 8.8EG 9.0⚠ KEV2018-03-28
Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of s…
- CVE-2017-6744CRITICALCVSS 8.8EG 9.0⚠ KEV2017-07-17
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affect…
- CVE-2017-6743CRITICALCVSS 8.8EG 9.0⚠ KEV2017-07-17
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affect…
- CVE-2017-6742CRITICALCVSS 8.8EG 9.0⚠ KEV2017-07-17
A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. An attacker could exploit this vulnerability by sending a crafted SNMP packet…
- CVE-2017-6740CRITICALCVSS 8.8EG 9.0⚠ KEV2017-07-17
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affect…
- CVE-2017-6739CRITICALCVSS 8.8EG 9.0⚠ KEV2017-07-17
A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. An attacker could exploit this vulnerability by sending a crafted SNMP packet…
- CVE-2017-6738CRITICALCVSS 8.8EG 9.0⚠ KEV2017-07-17
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affect…
- CVE-2017-6737CRITICALCVSS 8.8EG 9.0⚠ KEV2017-07-17
A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. An attacker could exploit this vulnerability by sending a crafted SNMP packet…
- CVE-2017-6736CRITICALCVSS 8.8EG 9.0⚠ KEV2017-07-17
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affect…
- CVE-2017-0222CRITICALCVSS 8.8EG 9.0⚠ KEV2017-05-12
A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption Vulnerability." This CVE ID is unique from CVE-2017-0226.
- CVE-2017-0149CRITICALCVSS 8.8EG 9.0⚠ KEV2017-03-17
Microsoft Internet Explorer 9 through 11 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability." This vulnerability …
- CVE-2016-4657CRITICALCVSS 8.8EG 9.0⚠ KEV2016-08-25
WebKit in Apple iOS before 9.3.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
- CVE-2016-6366CRITICALCVSS 8.8EG 9.0⚠ KEV2016-08-18
Buffer overflow in Cisco Adaptive Security Appliance (ASA) Software through 9.4.2.3 on ASA 5500, ASA 5500-X, ASA Services Module, ASA 1000V, ASAv, Firepower 9300 ASA Security Module, PIX, and FWSM devices allows remote authenticated users …
Map vulnerabilities like CWE-119 to your infrastructure
EchelonGraph correlates every CVE — across CWE-119 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →